Zgdiwiz.exe

ENGL Imaging Toolkit

Expert Networking Group Ltd

Publisher:
Expert Networking Group Limited  (signed by Expert Networking Group Ltd)

Product:
ENGL Imaging Toolkit

Description:
ZgdiWiz

Version:
8.0.0.1209

MD5:
7ecb4564fda1b9e74e33307b3d872cd0

SHA-1:
e68698ac6df6aa47dc841697b58f8959062a12fe

SHA-256:
c78eb31aebd14602dd29e9b8e3c63ffdf555e6daba6b6ee0215f81616af9ca56

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 4:21:54 AM UTC  (today)

File size:
364.6 KB (373,336 bytes)

Product version:
8.0.0.1209

Copyright:
Copyright (C) 1999-2013 Expert Networking Group Limited

Original file name:
Zgdiwiz.exe

File type:
Executable application (Win64 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\zgdiwiz.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/31/2012 11:22:07 AM

Valid to:
9/9/2014 4:24:37 PM

Subject:
CN=Expert Networking Group Ltd, O=Expert Networking Group Ltd, L=Wantage, S=Oxon, C=GB

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
112109522CDB046BF7D47CDD96431266CED4

File PE Metadata
Compilation timestamp:
4/12/2013 3:22:28 PM

OS version:
5.2

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:AxjD+cvp2Gi2Y9rLsZprUNQfVHTi86ZYt1pIyg0raMjXuvHyz:AxjScxV09XsnVHS0raZyz

Entry address:
0x198C8

Entry point:
48, 83, EC, 28, E8, DF, 74, 00, 00, 48, 83, C4, 28, E9, 1A, FE, FF, FF, CC, CC, 48, 89, 5C, 24, 08, 48, 89, 74, 24, 10, 57, 48, 83, EC, 20, 48, 8B, D9, 48, 83, F9, E0, 77, 7C, BF, 01, 00, 00, 00, 48, 85, C9, 48, 0F, 45, F9, 48, 8B, 0D, 09, C5, 03, 00, 48, 85, C9, 75, 20, E8, B7, 68, 00, 00, B9, 1E, 00, 00, 00, E8, 85, 66, 00, 00, B9, FF, 00, 00, 00, E8, 43, 09, 00, 00, 48, 8B, 0D, E4, C4, 03, 00, 4C, 8B, C7, 33, D2, FF, 15, A1, 19, 02, 00, 48, 8B, F0, 48, 85, C0, 75, 2C, 39, 05, DB, C4, 03, 00, 74, 0E, 48...
 
[+]

Code size:
230.5 KB (236,032 bytes)

Scan Zgdiwiz.exe - Powered by Reason Core Security